SDTray.exe

Spybot - Search & Destroy

Safer Networking Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SDTray’.
Publisher:
Safer-Networking Ltd.  (signed by Safer Networking Ltd.)

Product:
Spybot - Search & Destroy

Description:
Spybot - Search & Destroy tray access

Version:
2.4.40.129

MD5:
f6ecb2fe1587e03497967fe7f35f47b9

SHA-1:
e824c774d081c00c044e4af8341e78ae8391c8ff

SHA-256:
85073ef9cc961daf529db612be9581ebf3e56a5092d7a9316c79603ed46f0d4e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 1:46:54 AM UTC  (today)

File size:
3.9 MB (4,101,576 bytes)

Product version:
2.4.40.0

Copyright:
© 2009-2014 Safer-Networking Ltd. All rights reserved.

Trademarks:
Spybot® and Spybot - Search & Destroy® are registered trademarks.

Original file name:
SDTray.exe

File type:
Executable application (Win32 EXE)

Language:
English (Ireland)

Common path:
C:\Program Files\spybot - search & destroy 2\sdtray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/21/2012 8:00:00 AM

Valid to:
4/8/2015 7:59:59 AM

Subject:
CN=Safer Networking Ltd., OU=Security Solutions, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Safer Networking Ltd., L=Greystones, S=County Wicklow, C=IE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1ABEE452F106342568D826705DC1F4B1

File PE Metadata
Compilation timestamp:
4/25/2014 8:14:26 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x21DFEC

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 04, 00, 61, 30, E8, 0D, 37, DE, FF, 8B, 1D, 04, FB, 63, 30, B8, E0, E0, 61, 30, E8, 5D, 7A, DE, FF, 33, D2, 55, 68, C5, E0, 61, 30, 64, FF, 32, 64, 89, 22, E8, 02, 1F, FF, FF, E8, CD, 89, FC, FF, 84, C0, 74, 0A, E8, A8, 31, DE, FF, E9, 97, 00, 00, 00, 33, D2, 55, 68, 8B, E0, 61, 30, 64, FF, 32, 64, 89, 22, 8B, 03, E8, 3A, 76, DE, FF, 8B, 03, BA, FC, E0, 61, 30, E8, 1E, 76, DE, FF, 8B, 03, 66, BA, E8, 03, E8, CF, 25, E2, FF, 8B, 03, C6, 40, 5B, 00, 8B, 0D, A8, 79, 63...
 
[+]

Entropy:
6.2646

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,215,424 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SDTray

Command:
"C:\Program Files\spybot - search & destroy 2\sdtray.exe"


Scan SDTray.exe - Powered by Reason Core Security